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(57)Abstract: 

PURPOSE: To protect an information stream from hostile persons. 

CONSTITUTION: In a method for authenticating communication partners, entity authenticating 
operations and temporary secret key distributing operations are nearly' simultaneously executed 
through an unstable communication channel between communication partners. In this method, 
the authenticity of the communication partners is discriminated by the possession of a 
permanent shared secret key. This method includes several steps. To define a composite key, a 
data flow is exchanged between the communication partners. At least a portion of the data flow 
is encrypted so that the permanent secret key may be used or masked. At least one 
authentication tag is exchanged between the communication partners through the 
communication channel. At least part of at least one authentication tag is based on the 
composite key. The authentication tag is used to discriminate the authentication of at least one 
communication partner. 
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(54) [$gfJZ>£»] h-^cOfSSE^fe&Uf^^T 1 ^ 
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(57) [#f«»3ft©«6ffll 

(a) »i <D&mRvm2<D^m\c£oxm.feztiz>m 

-&*-cr>m l w^fii£it&fE*jf&ft*#ffl§5^*-K <fc 9 

m i (Dint /<- h i-t*b m 2 h -r izmiB z ti 



2 

(c) flirism 2 roiiif ^- h^-*»P>|gi©ii«^— h^- 

awe* 1 v-r^&^xnm-rzxTy? t. 

[if 2 ] mim&^—nm i <z>g3Hifl§&ll§i»rosg 

i (Dmmm%x$> <o . 



3 

[ia*^4] ttBff2 0««fcB**<, <&*nog&^ Mr 
[w*»5] (a) ig2oa«^-h^b»i<oa« 

(e) S 2 o»t/<- h t^5>* l ©M^- h ti:i 

frt-si»E# i *>afS'<- h ■*-!::*>**»*: wc*tr* 

JBl«>a«^*-h-*"©*i»lC »3e«>gXt/»(Wlc3E« 

srtuf-rsi^^^^^t, 20 

2 (omis b-rm-eftt>tiz>m<s 
« h-j-srBirt-a**. 

^4#fflM^fcffl^tlllBg ©o*©t«* 30 
flttE»&*~ cosuo— «asg*>/3*-o»s*u 

* 7 KE*<&a«'«— h^BBE-*"***. 
Ettoaft'*- h ^-^BIE-r 40 

oj ^c^^^afi^-y^/KDaft^^ h-t- 
^i(oafi^-b^^^2oaffli^-h*^^ora"e 

aif^^ h^*BE^3S'*^.M£:J3i' v t\ 

(a) »10K#Xtf»2 0K*«CJ:oT*ftSlX** 

ffiHHbbfcfcco, Wll^f^ h - 7 s — fte^tsT* 

-?mzm i oaft^- h 2 ©aft'*- 

(b) (wrE*ioaflr^—h^6!B2^a«^--h-t- 50 




4$£F 2 9 2 6 6 9 9 

4 

^oaflH:*»lt 4 i!tJE«^*-coJg2©ISi8£jifJlS 

jsioa«^— h-^-d>e>iS2<oa«^— htcuf^n 

fc^-#«tttE*«Wft*ffl8W^-«cJ:oa£»Ufc 
fcotdtf?*-**** 2 <oa«'<- h^bJB l coil 

m<><- h-#-icaflri-6«WEii2aflr^- h 

(c) «lEl20iif|/^ ht^ibil ©Hf^- Ft 
lca«S*tfc^-*««r*fflUT, (KtE*2©a«/<- 
h^^fSWtt&WWEJB l tD^** h • r-fcDg&M:*: 

tti&m 1 h^-ic*5t^-c*jgij-*'<5«!rE» 1 mm 

[W*jli U il»E*«^-o*io»*«:tB*BB*o 
r t *«Mft fc-f-*«**S 1 0 CE«<oa«^- b^SriB 

[t»*«i 2] tteftioaNRKxa*. ^ost^ 

ff3fcJg 1 1 lcB*©a«'<— h^SrBBEi-S^^-^o 
3] ttEJ* 2 0*gftS*a^ ^*D<£>£f££, 

MR LfctttOWBOJttfc tr4tr r i trWki: 1 5, 
2(cE*oa«^— h^-SrBEi-S^^^o 
[»**14l (d) *2 0M/<- htd^Sl^a 

h^icawsns^— **a s *2©^*;* h • 7 s 
(e) *2©a«^ bt^b* i oa«/<- htica 

?%t&m i ©a«^- bt^bi2 ©m^- h-^tca 

[8(1**1 5] »E«*^-3ftSg©afl*-C*S*t, 

ii©afi^bt©t«>^ »3e©gxw»«nc3t« 

I2©if|/^ht©^fti:, MEff&Og&Wttfc 

ottfctf*-rs»E*2oa«A<-- h-j-icfcs^at, 

mEK^-Cttv^aft^^^Sr^b-CRtEJRiisAt/IB 
2©a«/<- h^lB-etT*>ixSa««:««i-S»&^— 

Sr^-TSttEIS l ©a«^- h*t\^&>Z>^Wtb 

tf. §t**l l^E«©a«^-h^S:BIEl-«^^ 



# 

(3) 

5 

[W#Jgl 8] WEas»3ftS«P*Yk«»«r4tr, If 1 
[0 00 1] 

fctt##a>&««i*afc»©*»lcHU £9 Atomic 
wt, a«^<— h^-<o#7cS:«2L, 1£»oam'*- h-J- 
[0 00 2] 20 

±-C^v^ft^^^/^J:t/i2:/u^— • h? — ^ft 

[0 00 3] *^fc«0«JMS@«£ LT£fct>OI*3 
<0«Fje<z>ii«/<— h^ri 5 , ^tr-^^Sv'^f^rt^ 30 

i<oi«^- h ^<o#7c*BiiET?# art isis-e* 
5 0 — jki-. r j- ^ 47-4 mMmftte, "r—f&m 

ft (long-lived) #JB8ME*— «:«< r ^JdJ:orffifc 
Oii^K^LTBIE^Sfc&^n h=/^Hff$tl 40 

So fc^xtf, DEs*^kftif^se*«>WF#ft»f^-e 

tt, ro*«ttft*fflM^--«:««"**<5rt36S-e# 
5o *fc-#ttfttf>«\ t 5— *©a«'*- h^OBUE 

«r*H-r*a«'*— h 7^^yf^Mi 

— AO^StCftoT^S r^ljgjfc (challenge) J £r 
fcftS^-h^tt. a*, *ttttft#ffl8Hfc*~«rfiEo 

#tt*HE**u-C, «*«^*«»ft*ffl8M6^-«:Bf* 50 




^fr 2 9 2 6 6 9 9 

6 

LX\<^Zfr&tzte : ZiX&%}'oX\,^Z>frkoi)\ fe5^ 
5 ***«»]-*-*. «t 5 ftBBEHfm* — *M 

-rBBE*«*>»^tt, a#. W*OB*«**l*fll»cS* 

<j£^Lft^£. a«/- Knnoa«*^rtBicft6>ft 

[0 0 0 4] *#©2 0|(0|«ll «*fta«'<— h 

rt^2A*fctt*ix«±oa«^--h^ s *ffl"t-S. — 
&$tfjft (short-lived) y > 3 > • Sr^fifc b 

• *—&&m-rz>k, ift»»iii^*ftEtk*rJiiiis«i; 
*««ft*fflM*-«raffli-6^*3ft«ft<ft9, am 

h^B8^-r^afiir?/^3 rs**» (repl 
ay attack) j ^b§at5:^^^Ct^5: 

cn^-f^-fBBEKfP^lcKfeixS. a«S*#<z> 
BSE<&aM£fiL -fZlZ-hlz— «FWft«^ir^V 3 >- • 

X B EE * f*ff& -5H t 3b 5 ^ I i * tf> pff* £ HfT 3 <fc 5 

[0 0 0 5] **©3o|©18ll, S^-Cftv^S** 
^LT^-^^S:tt^ofcaffi^*#[-^L, e^^tc 
co^- ^ ^ $ v > ft v > r. t SrfifeBE-r 6 r. t x~&> 
So ^<^, r<oJ:5ftp« s'ir-^BSEf*. Slfs^ 

ic<toT^oTv^s 0 :©me^^ a#. a*#r^ 

• x hy-JU£Bifc*^£:§tt]&5£, SfS^li, 
$:^«f-rSo a««lOBIE#^a««^BIiELfc#^ 

-ty^£hxi^^k\,^?i%utmbftz>o ^<om<D 

S»Wft«[*t# (adversary) &&±Xt£ 

[0006] aft^- h^woft^fta«S: 

(d, (1) S»lWT% ^tfe^-^^^^x 

ArtoaWIB^-r^T^aiSSrKftLTEflH-afc* 
IcaWf^lSfefi 1 }^ (2) S»tt-C, ^-^^fc^s 



7 

&*t#S (attack) 12, ^m*5<t^l5af£i5^n9tt^ 

[Of^T, x - ^ £ tf-r— * ^ISi-o T ? ir * £ 

[0007] nm, ie», *5<t^o^o^^7-r 

^lalff ^ t *ff£i*r ? 5 £ # ft v >^Sj m ft Kit 

»tp e *»#*^7 7^^w^**»tf*b^a»ft 
a«^**/M£#fc^*»#«yi8^fca. 

x v * a -e l a>a«'< — h l, a>tt 5 r <t a* -e # 

##^a«b»ft»»*^*»ft^-^*:«e«-*-5«>«:B» 

fctfw-msrcfca. **«ft#flj«**— «•* 
■7^ -^t^a^ attWftttw*^*^^^ ^dw* 

iiit a t mm#) \c m t> e> ^ a * » ft ^ r. t * is x 

iWtl5^t% r^^^fir^ (dictionary attac 40 

k) j tw&nz&zm<D*7 7^>'&&v>&# : #)tew 

[ooo8] ^S^MK-e^^iA^, ^->^-r 
^^BE(c«fflr5**Wft^-**-1f«>^l7-K 

ftB*a* J: < fc£*:tf>-C;fc£ 0 ^< ©f-^I^r 

tcftoT^-5o 17 — K4rJBv^ttJL^i-<-f-Sfc 



2 9 2 6 6 9 9 
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^!7-Kil-CflEfflt6ritt, *ixftr.fc-Cttftt\ 
SBtea>ft9/J>£ft@;£*^ftoT\ gffi)toft8fc*t# 

a*. mftfts^v—h'lz&^x&m&ftfrti* 
— *ttft^-wi5*-w^<^l7— Kas|eia*ixa. ^ 
«U »#oi^xas#ttu:*#»fttf* :^i^77 

>r va*as3>^a— ^tt^oir^acftss^srss-ra 
T^tt, r<oj: 5ft^^7-YvftSa5^Ri«j-e*>ao 

[0 0 0 9] 

<Dm»SS: l A*^:tt««^a«S*#i:0*t»tcJ: 9 
»B*^5Sr»ftv^J:5l--rsri:-C, g¥##Sft<!f<0 

-fry =7 4 ^m(Dm^^-f\c < i\ ir^-^ yf^r — > 

[0 0 10] *r >r BSM& 

ft*****— #EB*i;ia« SaWMB-C^O £ 9 Lftrtft 
rffte>ftv^a(S^«Ktt^»Sr*/M»«c:-t-a, ir^r^ y ^ 

[ooii] *&m<om<D&#)\^ ikft&mizj:z>$ttf 

A{b-rafc26ic. *ttttft#ffi8«*-*fctt*^»* 

K^*^t^^^^BB«ft^<ose*^^«ffaasa* 

[0 0 12] DEST/U^yXA 

ft^ow^bawsrsejfcaofijffl-ra^o^. 
o»^4fc*^tfa»o^7^— ^^affl**ta io£fc 

Jg0!|-C-te, roffiOBH^^^CO^^wr^BliES: 
»»^r— X»i:a^'&*>*"t:ttffl-f6. 2 A 

tfett3A©a*tlr«tf, -*tt*fett*ftft*BB 

o*tTic««-r a r asr*# a 0 

[0 0 13] 

ttas*oau s ix a > ^±-c ft i ^a« ^ -v *^t©a«^- 

fr<DX'r?yzf$:Stto Wtf0}<nx7" yZfXVX* Mfe'<— V 
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'>tz < thi oobse* ^m> 'p* < t i>&&mz&& 

T?«t, < 1 1 1 OOBUE* i/ii, ( 1 ) MiE^^W 

rtSixS* y-fc— sHMEa— (2) *«ttfc#JB« 

H£f*-§*^S'^088c> *5J:t5 (3) BMBjMKttfc*- 
fc«fco-c3Eifc£*x. &&<ns<y comply & 

5 ^<z>4>&< £ t 1 o^»J;orSl$ix^o 
»lo3*#i:JB2oa*#IBi?«s:KaiE3fts^»*. * 

U *H#*IF*4 2 4 1 5 9 9 -5§-(CiE^£*x6 £ ? (C, 

tc, Sgi*>J:U<!g 2 oafl ^»ffraii3J:^2 0 
BE*^a*£*Six6o r<E>BE*^l*. SBl*5<fctf!g 

2 h^Woa«o«ix^»**/M»^-r'5^: 
«>, »l:fcJ:tf»2©BE*^<o**< £fcloa^ 

±wjB2«>aflr^— i^ra-c^o £ o £*x5 e 

E* ^tr***"*. 

[0 0 14] HftrTS^ **W-e«^*4x<5<oii, a 

«^-h^ra^Sc±"e*^^a«^^*^*^uT. ^> 
WB»ic»fi-6fc*©#iS"e*>6. :^s-cii, aft 

%<D&t£< kh-mm&*-\zm'3<h<D-x?ibz 0 b 



(5) »»f 2 9 2 6 6 9 9 
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[0 0 151 

[HlkM] Hi, IS 2, *5«tt/Bl3tt, 7—*<D*?*)h 

10 [0 0 1 6] Ell Idl*. ftfTftWlcJ:* 3^X • p< ^ir 
— ^BE*«Sr^-r. 0^19, A*3«fctJ<Btta«'* 

ffi/*— h^AJScfct/Btt, SS^-CftV^ (insecure) aiB 

^**/i'«:rt'L"Caff-*"5. iii:ii3oof-^^)« 
tt^^S*trv>5 0 glOr- 9<DWMX % aft'*— h 

-f BE«M<W*«r*"r9^^A • bTy h • * h y v^R 
A*^tf. Ii^r- *£>«tix«u ffigrco^^;* h • ^ 

Mjynexti^tfo a«^— h-^Bwt. 
20 j* • tr^ h • * h y y^R B s ffiS^x^^ h • ;* h y 

V^T e x t 2, *3J:t/aElfth a O«*-e*>Stf y h • 

<oa«odUxic*»i-«. ^o^h 1 ^ t 

43«t^BcoSfeSU=i— h\ a«^<— b^A^oJ:r^BlcJ:o 
-C**S*tfcBEB»W*RA*5i:VRii, ^^f^r 
^ h • ^ h y ^^T e x t 1 *5 <tt/T e x t 2 Sr^tflt 

[0017] a«'<— h^Attt*«ttft*ffl««^~ a 
30 $r@f^TLTl/^0-C, h^*A(^. Slfth.^fiEfflU 

£frz>m&) My h • * b y -^«r^rt-rs^«>ic. a 

ff^- h-#-B^b<DBE«»JK*R B «:ttffl-rsr fcsfts 

-e#^o a«^— b-#-B*s, a«^<— h^Aasflfertufc 
SwtMSi^ a«^«tix2 03»TWFi^ mm<>< 

40 T-#£o 

[0018] ^3 ^afsosKix-eii, ais^— h+ a 

T e x t 3 4:, BEW3iJ**R»*3J:rJ t T e x t 3 

i-**h * 2 *mm i,itmmb *mm-tz> 0 miB'<- h-r 

a, BEKVJS^Rb. Te x t 3, *5iuq«fch a «r«K 

fflts^ i*-c*s 0 rnxwy h • ^ h y-A^pc 

-Cfctttf, a«^— h-^BIi. a«^— h-*-A*5 r^: 
50 Bellareio ctl^P. RogawaylC J: ^"'Entity Authenti cat i 
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on and Key Distribution* (Springer-VerlaglC<fc o XT 
he Proceeding of Crypto '93X38^) X&b\CP£L< 
3&CbtiX\,^Z> 0 g#fftlc, 

[0 0 19] I3 2I3;, 'New Directions in Cryptograph 
y* (IEEE Transactions On Information Theory, IT-2 
2, No. 6, 1976) tV^IIXJ-IEifcSttfc, W. Diffie*5 
Hellman(0«^JCj:Sa*<0^~S!lftSr^L"Cl^ 

a ^*P©» g Z^m-t Z> ^t\C iot^ Lit 
try h • * h y — A*:a«'*— h**-Blc&S. SMS'*— 

\Z&oX±&L1t*iy b • * h y — ASriifS^— h-^A 20 

[0 0 2 0] Diffie-Hellman^~2S5lfctt, 3»tofcftt*t 

m*—(0±fStt:mte'+ZZ t&-?£ ZV-Vs Diffie-Hel 

[0 0 2 1] H2 (DDiff ie-Hellraan^r— ^^^d h ra/W 
©J:5ftfl6*0*— SESWMSHU Believing £tB*errit 
tlC ^oT'Encrypted Key Exchange: Password Based P 
rotocol Secure Against Dictionary Attacks* (IEEE S 40 
yraposium On Research And Security And Privacy, 199 

fcBWPt^ XmftKfRS 2 4 1 5 9 9&<D^&Xi>& 
5 0 Bellovin*3j:tBlerritt^>*jfeOSlCfe5JKV>«[^: 

li, H3^^^tlXV>5o m^coat), aft^^-h-^A 

is J: WBtt*«»*8*4r- a H3*Ctt2 
ooaf&^ftri 5 ^£H-CV^ri^ £ b\zmiB<Dmfr* 

«/<-h^Att, <k*a<DS&gl£**LT, 



ftfr2 9 2 6 6 9 9 
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^^y^E^t'gOai^ftr^ h'^hy^ 
4*K0HftH,0>»fr4>Hi (gOajJ*) 

v e a tt«w& nttanniit £ fc. ^10-7 * * > ^ 

^iC-TSr i^-e#So :^^ffllt, Bellovin 
3o<fctfMerrittl3:, Diff ie-Hellman^r — «£ *? ^ f£ 

[0 0 2 2] *%P>^(0— Hffi^JICoV^X. BUSriMHL 
Skbt*. (l) a«^*^*K:tev*T2A*fc««nE* 

jlo a *#pfl(o^ ^<t4*t<< mm^n^r z^t, 
(2) aft^^^^i-^^^-c^^Fflx^o t r> £*ts 

{k(Dft^ «9 IC^ fZtiim-tZ^ t , (3) Kl^fA 
rto 2 A* a ^ 
• **~%ftf2re*Z>£o\z-rz>^b^ (4) xyr^fr 

irlcio-C^^tbSr (5) afll*>^^A*5*7 

?-fy*»K»tts(f±-c, #ic, iftaiicwL-c* 

^"C«>a^4:. *5<t^ (6) o*p 

[0 0 2 3] i4 ic^t-Tct 51-. r<DSat«"Ctt, 
W^SMe^r— a *r*JBi-*a«'<— h^AioJ:U5B(DPfl 

isifl^tt, ^--^ojHx^jett^traw^aflifflfcd 

4 o$fcJ2 5 oof-^«nt^K^ g WSrSJ* 

[0024] H4©^ty*-ett, a«^— h-*-At*a 

-h-^BIi, am^-b^AlCTe x t 2^5^^ 

je?*-rs. fti-M^- h*^-Ai^ affirm- id t 
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e x t 3£mzz bxmfg'<- i^bicjs*-*-*. ~<d 

y f -?&&<Dffl s aff^-l^A:te<fcU<Bte, Ztilfti 
b, y"*x b • ^ ^-fe-^^/iii^-^^gJc^icJzo 

•?-Af3\ Textii^ Bff^b^^li^r^teo^r 10 
h^-BKj£6o J: OftttWia*. ii«^-h^-Att, HI 

2fC^Ufctif^C0Diffie-Hellraan^r— ^gltCcfc 9 . a & 
ait^t-^o ate. ^*/UpO»#0»j£tt#J&»feO& 

a^^-Ht^\ g<Da*fc*«ttfc*fllS* 

[0 0 2 5] 2 <Dmm<DffifrX*lL mi§'<— b B 

*«rii«^-h^A(ciJls. SfS l <£>*/£^Sii*. Diffie 
-Hellman^— £&^-7VU& if tf>ti£3fc<£>3r— £&<£>^ 2 <7> 

mft£tifrmm<Dm*bitn<D p zmtit^z* &mzm 

trfflv\ a«'<~h-*-B<z>«»j=i-b\ afi^-h-J- 
* b&#T e x 1 1, m 2 <of— $ (Dtftnx'&m z nti 

^*r* hffi#T e x t 2. fe^tfE. 1 (g<Z>a*) ^E 

*x5o SkK> a t3Ejfth. l O»*tC**^ att, m 40 
2 0Diffie-Hellman^D h *) % gOafl^^v* 

an p b L-C5£«£*l6 0 

[0 0 2 6] r<E>£ plcLT. Sr#J<0 2 oOilfgOtffttL 

» ^-^^p^i-5 2o<^«tt i b^-r^o fc*: 
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«ffiSr*fe lt^5o 1 olS, Textl£Text2 

X\ fcplote, (a * fete a tests'*?*— fmzife 

t«|/<- h * B -cfc 6 i be-*- S:K'fc5 0 
[0 0 2 7] m3 09A0ftiVCtt % v 1 ** h»»Te 

x t 3riS«ff'<— htA^f)iif|/<- b-t*B(caim$tt 

1 3oo^7^-^jciafflSixSo ^(omscommcom 

5r iSraflM— h^Bt^LTBELT^Sp f^B$ 
X\ Te x t 3JC&*nSx— ^OjE»SdS««ESiX 
[0 0 2 8] **WO*aS«X-tt. JE1»E\ E 2 , 

Bff^k*^ttBt*3C*E. a -Cli, g^amt-^ 

r^ffi-rs r i: *-c# *ttf -cs>5o 
[0 0 2 9] *ftm\Z£tir£ y m%-ifr§-itte'*x*>>y 
*»h x feJ:t/h 2 tt, (1) *jttWft*ffl|K«^~aSr 

(2) a S:l£lfe^r— <!: It 

-x*>zlB8«, (3) a «rSE»^r— 4: 

[0 0 3 0] «Hojl*«-ett, acifth.^i^h.* 

(D 'cbc.c (x) ~t Lxmztiz, frmfttm 

f^aOTt^f^ b ' * b y — Aco^o y^pjp 

(2) 'hash (x, a) 'i LT*Sn5, ^cotfyh 

(3) 'CBC a (hash (x, a) ) " b IsX^&tl^ ± 
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mt (2) <om&v>m&-£ 

(4) 'Encryption (hash (x) ) " b Lt$t^ t &X 

#5, w#ft*» (DEsr/^yxA 

[0 0 3 1 ] s/-fe-^«E3— KSIg 
^ 5/ ir ^- i/^IE =3 — K (Message Authentication Cod 
e : MAC) I*, ii«0«attS:«II-r5fe»^*-8-<b 

[0 0 3 2] ^yt-i?BE3-K (MAC) 

ft i- 5 «> i c m * * r j u =f y x a £ ttffl -r * r t a* -e # 

52*, St>«t<^Pe>^^TV^5iE^:^^^DES MODES OF 0 
PERATION, <fc 9 AfltWtCtt* 198O¥12^20 tCNa 
tional Bureau of Standards^* hWft ^ftfcFederal In 
formation Processing Standards Publication, FIPSPU 
B 81\Z.W£%&£$tlX\/^Z> 0 V%^7v>y?mm (Cipher Bio 
ck Chaining: CBC) Ktt. h£r&& 

Hi, fi£*S6 4 If 3/ F(Dffifftt?fc5:i:M>S 

*fe*V\ MACtt, Hftf^hOM^kb'^ht 

te, C. H. Meyer 3o <fc tFS. M. Matyasld X 6 'Cryptograph 
y: A New Dimension in ComputerData Security* (John 
Wiley & Sons, New York, 1982) b^^O vm^CXfim C h 
*LTV^ 0 ^ li^e- KOSgt'D E S 7/U 

S> hgff(7)^Wfo5<!:, MACF^cD-r-<r(Dtr^ r-tf* 

*SA«kirj/h©MACSrttf Lt, BE"*"^ 
y-fe— i^fc tfcJCMACSriilfgU 

[0 0 3 3] *«WO*lt«"Ctt. **/n5r*«0M[ 
I^Lt, ^yt-iWEa-K (MAC) 
«-?-/n y^aW-effiffltSDE S»Stt, 

C «MB*-*ffl^T* ^BE = — 

K (MAC) &Vt#ri-ZZbX\ ^2x-fe-^BBE=— K 



(8) #«= 2 9 2 6 6 9 9 
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[0 0 3 4] IEEE Communications MagazineCO^ 2 3 
No. 9\C&Ml£tLtz % R. R. Jueneman, S. M. Ma 
tyas % $o£ZK. H. Meyer {CI X Z> ira^t "Message Authenti 
cation'tdK* Bffl-^o y * il««»«^t>S*fej&S|B 

[0 0 3 5] ^IEXd h =vutf>JE£JBM 
*58fl^nh3;Hl ^I&t*— ^Si^x^cD 1 A 

jWrrs. Hsu *^*fflS(-iattL 

[0 0 3 6] 0 5IC*H-£ 5lC ftmf—ftemis*^ 
^812, n-^;U-xyr .^5/hr7-^ (LAN) 1 

n^tuo^Affl^^t 0 ^-^^, ISH^Bi 4^^cfiX 

y ^f/mxmwi e^>^n^t<Dm^m^^xhx 

i/x9-J*&<a?>Xh&i<\ 

[0 0 3 7] *6lcH5*r#BR-r<5i:. »« 

fgy >^2 2{CJ: K) v—Z>J\s • xy7 h!7 — ^ 

(LAN) 1 0lCife"Ct5t(O-e*S^ ^^^5^ 
5p 0 • ny^a-^ 1 8 ft, n— 

40 'xy7-^7h7-^ (LAN) 1 0ffltf>»BSe«K 

a«w»st«2 6*5j:viifflr5i>^3 4Sr*Lry 

- b ^ x>f • f-/< 2 8 iciiets r ^ t> 5 0 

h$ • i^— y<2 8tt. n-^u.xy7^«yh7 

— ^ (LAN) 3 2£n— • ijj T • ^5/ h 17 — ^ 

(lan) 1 oicy v^f swtBfcjR^i-flWoa^tr 

rr — ^^fcfi^tg!7 — ^^T 1 — V-3 > (IWS) Xh 

z>^b*m*i,\<\ 

[0 0 3 8] n-^/U-xy7-^y (LA 
50 N) 3 2*5^1^0— • ^y T • ^tv h !7 — ^ (LA 



m 
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n) i otcwaiLrwij* Lfcii9. ^ • ^ 

*-v^£fcte7-r:/7 y -*y— fcr*£LT. ^-o-:? 
u — Ms • avtr*— * 1 fc*-e#*. s 

*T5 5. £<bl-> SIMM, ^^i/^^y^a 
-^18lin-^;l/.x!)T-^yh7-^ (LAN) 

IC, a— • T • h? — 9 (LAN) 1 0 tt 
P-*;i/*x!)7-*yh7-^. (LAN) 3 2^M» 

o£9, cz— • zny r • h ^7 — ^ (LAN) 3 20 

y 7*^^r«cia§t-r5— D -^;u.xy7 

•**M7 — * (LAN) 1 OStt^-^IcKIKU > 

[0 0 3 9] *<Oft©lS4fl|^ 
a«'<-^*ME^« 

b*i*v\ (ft»#ds— «F»<C-fe ^>3 > ' 

3>£ r««j t5:i«J4v\ fc5lool54 

— r/JfcS (interleaving attack) J ^ h #31 W <£> ^ & 

b=;i'&ft±\z1%&£tiX^Z>ZkX~hZo corncob 
10 04 0] 




«r«F 2 9 2 6 6 9 9 
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ftv*wi: art *t*d 

^««*»Sfc»^ % tt»*#a«'<-h^**^\ 3K 
5* r-fv^ y— (interleaving attack) j 

s 0 ro«<o>r y — aw. :£fifcT-te r-t? 

tt, S»»4»»t^ 2 A©»J* h t i 

m^#?u tfciit ^1 1 

[Hll] jteffSWcJ:S2S*#IB07<y* — i^RBES: 
[Hi 2] jfefira«fc:J:sa*o^— t"fcfc>*>, Di 

ffie-Hellman^— Xlftft^^SSc*— 5!*S:^"*"ia-ea) 
[El 3 ] Bellovin*5 ±t/Merritt^«^tC J: SifetTftflf 
[HI 4] #38910— HJ£0iJJcJ;5 2S*#raotiSBiiE 
[0 5] ^^OBIEftf^^^i-S^^^^n^^^ 

[^-^oiftp^] 
a aft^-h^ 
B a«'<— h + 

a 

T e x t 1 v*** h • ^ h y 

T e x t 2 7^^-^ h • 7s Y y 

T e x t 3 "T^cTs b - 7 b y 

ho 1 Xtt 

g S^c 
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(56) ftffl W- 2 -305039 (JP, A) 
¥1 -99159 ( J P, A) 
»«»KtUJB^BB535863 (EP, A 
2) 

a*H»n=tHJS^BB223122 (EP, A 
2) 

Hk*H4*ffHa«^HI661844 (EP, A 
2) 

»«#ffmK^BH307627 (EP, A 
1) 



(58)MEL«:5MF(Int.Cl. s . DB*) 
H04L 9/00 - 9/38 
G09C 1/00 - 5/00 
G06F 15/00 



